GhostCode abuses Microsoft's device authorization flow to obtain tokens and register attacker hardware inside a victim tenant.
A viewer add-on with tens of thousands of installs sent live Twitch session tokens to a commercial bot operator.
The FBI warns OAuth consent phishing has been seizing prominent people's accounts since late 2025, and password resets do not…
Google tracks three suspected Russian clusters abusing OAuth and WhatsApp to hijack targeted accounts.
A high-severity flaw in RabbitMQ lets attackers steal OAuth secrets from the management interface without authentication.
Attackers used 3.7 million spoofed OAuth client IDs to enumerate Entra ID user accounts and map application ecosystems.
Two RabbitMQ access control flaws could leak OAuth secrets and expose cross-tenant queue metadata
Cybercriminals are using Microsoft's OAuth device authorization flow to steal authentication tokens through phishing campaigns that bypass traditional security tools.